Is one to one NAT dangerous?

From: Sean Richardson (sean.richardson@coldnorthwind.com)
Date: 08/20/01


Subject: Is one to one NAT dangerous?
Date: Mon, 20 Aug 2001 14:30:38 -0400
Message-ID: <CD54B630010B374D9AE3782429FDF7CE4E4D@dc1cnw.ColdNorthWind.com>
From: "Sean Richardson" <sean.richardson@coldnorthwind.com>
To: "SECURITY-BASICS (E-mail)" <SECURITY-BASICS@securityfocus.com>

I am wondering what the implications are of using a One to One NAT set
up for web servers that are not on a DMZ would be. Are there more
vulnerabilities to it rather than using say just NAT?

 



Relevant Pages

  • Re: Systems behind NAT - port scanning etc.
    ... having 2 web servers behind a proxy on the same ip ... and that stand-alone SSL accelerators are ... protocols will be designed with nat in mind. ... or a QoS signaling protocol that didn't allow you ...
    (comp.security.firewalls)
  • Re: Systems behind NAT - port scanning etc.
    ... web servers behind one nat can be done easily ... >>with a proxy. ... > security associations. ... having 2 web servers behind a proxy on the same ip ...
    (comp.security.firewalls)
  • Re: Hardware firewall for DSL webservers
    ... > I have a DSL connection with 5 public IP addresses, on which I would like to ... Any recommendations on what hardware firewall I can use with a good ... NAT works great with public IP's and even web servers. ...
    (comp.security.firewalls)
  • Re: Systems behind NAT - port scanning etc.
    ... > organization depends on for their business, ... I would venture to guess that your VoIP ... two different web servers behind the same NAT or two ... nat rant), but i'll bite. ...
    (comp.security.firewalls)
  • FW1 Blocking Nimda
    ... Web servers in a DMZ with legal IP's ... therefore FW is not doing any NAT. ... recommended rule to block nimda/code red ie create uri and add to resource ...
    (comp.security.firewalls)

Quantcast